7 lines
No EOL
360 B
Text
7 lines
No EOL
360 B
Text
The attached image causes an info leak in image inflation. It occasionally crashes when rendered, otherwise it displays uninitialized memory as pixels.
|
|
|
|
To reproduce, put the attached images on a webserver and vist: http://127.0.0.1?img=inflate.png.
|
|
|
|
|
|
Proof of Concept:
|
|
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/44528.zip |